Page 1 of 1

Whoops: 10,000 Linux servers hit by malware serving tsunami

Posted: 24 Mar 2014, 17:43
by GDI_Lord
10,000 Linux servers hit by malware serving tsunami of spam and exploits
Two-year-old Windigo may also have infected kernel.org Linux developers.

http://arstechnica.com/security/2014/03 ... -exploits/

Re: Whoops: 10,000 Linux servers hit by malware serving tsun

Posted: 25 Mar 2014, 08:10
by rustypup
FTA wrote:The Windigo campaign doesn't rely on technical vulnerabilities to take hold of servers, Eset said. Instead, it uses stolen credentials. That finding led the researchers to conclude password authentication to access servers is inadequate.
any system is vulnerable if your "admin" is playing fast and loose with creds...

the real story here is the sheer volume of newblets rolling *nix servers without even beginning to contemplate security... very much like apple users, they think the OS makes them secure...

Re: Whoops: 10,000 Linux servers hit by malware serving tsun

Posted: 25 Mar 2014, 10:11
by GDI_Lord
rustypup wrote:any system is vulnerable if your "admin" is playing fast and loose with creds...
+1 dude!!!

Re: Whoops: 10,000 Linux servers hit by malware serving tsun

Posted: 28 Mar 2014, 03:28
by hamin_aus
Nobody will ever guess my birthday is my password

Re: Whoops: 10,000 Linux servers hit by malware serving tsun

Posted: 28 Mar 2014, 10:14
by GDI_Lord
hamin_aus wrote:Nobody will ever guess my birthday is my password
By these links combined,
http://it.slashdot.org/story/14/03/27/1 ... name123456 +
http://it.slashdot.org/comments.pl?sid= ... d=46595523 +
http://it.slashdot.org/comments.pl?sid= ... d=46595649

I am Spaceballs: The Captain Planet!!!